Tracker / CVE-2024-2049
CVE-2024-2049
Medium 6.5
Server-Side Request Forgery (SSRF) in Citrix SD-WAN Standard/Premium Editions on or after 11.4.0 and before 11.4.4.46 allows an attacker to disclose limited information from the appliance via Access to management IP.
Affected products and versions
| citrix | sd-wan_1000_firmware · 11.4.0 → 11.4.4.46 |
|---|---|
| citrix | sd-wan_1100_firmware · 11.4.0 → 11.4.4.46 |
| citrix | sd-wan_110_firmware · 11.4.0 → 11.4.4.46 |
| citrix | sd-wan_2000_firmware · 11.4.0 → 11.4.4.46 |
| citrix | sd-wan_2100_firmware · 11.4.0 → 11.4.4.46 |
| citrix | sd-wan_210_firmware · 11.4.0 → 11.4.4.46 |
| citrix | sd-wan_4000_firmware · 11.4.0 → 11.4.4.46 |
| citrix | sd-wan_400_firmware · 11.4.0 → 11.4.4.46 |
| citrix | sd-wan_4100_firmware · 11.4.0 → 11.4.4.46 |
| citrix | sd-wan_410_firmware · 11.4.0 → 11.4.4.46 |
| citrix | sd-wan_5100_firmware · 11.4.0 → 11.4.4.46 |
| citrix | sd-wan_6100_firmware · 11.4.0 → 11.4.4.46 |
Analysis
This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.